Author: alteholz Date: 2015-02-28 18:36:12 +0000 (Sat, 28 Feb 2015) New Revision: 32553
Modified: data/CVE/list Log: mark CVE-2012-6687 for libfcgi as no-dsa, follow the decision of the security team for Wheezy Modified: data/CVE/list =================================================================== --- data/CVE/list 2015-02-28 16:22:55 UTC (rev 32552) +++ data/CVE/list 2015-02-28 18:36:12 UTC (rev 32553) @@ -1629,6 +1629,7 @@ CVE-2012-6687 (FastCGI (aka fcgi and libfcgi) 2.4.0 allows remote attackers to cause ...) - libfcgi 2.4.0-8.3 (bug #681591) [wheezy] - libfcgi <no-dsa> (Minor issue) + [squeeze] - libfcgi <no-dsa> (Minor issue) NOTE: http://www.openwall.com/lists/oss-security/2015/02/06/4 CVE-2012-XXXX [Stack-based buffer overflow when scanning directory structure for absolute path entries] - fuseiso <unfixed> (bug #779047) _______________________________________________ Secure-testing-commits mailing list Secure-testing-commits@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits